From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.1 (2015-04-28) on sa.local.altlinux.org X-Spam-Level: X-Spam-Status: No, score=-3.3 required=5.0 tests=BAYES_00,RP_MATCHES_RCVD autolearn=ham autolearn_force=no version=3.4.1 Date: Sun, 13 Feb 2022 00:13:12 +0000 From: QA Team Robot To: sisyphus-cybertalk@lists.altlinux.org Message-ID: Mail-Followup-To: sisyphus-cybertalk@lists.altlinux.org MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Subject: [cyber] I: Sisyphus-20220213 packages: +2! -1 +30 (17516) X-BeenThere: sisyphus-cybertalk@lists.altlinux.org X-Mailman-Version: 2.1.12 Precedence: list Reply-To: devel@lists.altlinux.org List-Id: ALT Linux Sisyphus cybertalk List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 13 Feb 2022 00:13:15 -0000 Archived-At: List-Archive: 2 ADDED packages kernel-modules-drbd9-std-def - Kernel driver for DRBD * Sat Feb 12 2022 Andrew A. Vasilyev (Andrew A. Vasilyev) 2:9.1.5-alt1.331543.1 - Build for kernel-image-std-def-5.15.23-alt1. kernel-modules-drbd9-un-def - Kernel driver for DRBD * Sat Feb 12 2022 Andrew A. Vasilyev (Andrew A. Vasilyev) 1:9.1.5-alt1.331785.1 - Build for kernel-image-un-def-5.16.9-alt1. 1 REMOVED package mars_nwe 0.99-alt6 30 UPDATED packages clickhouse-backup - Tool for easy ClickHouse backup and restore with cloud storages support * Sat Feb 12 2022 Anton Farygin 1.3.0-alt1 - 1.2.2 -> 1.3.0 * Mon Nov 29 2021 Anton Farygin 1.2.2-alt1 dotnet-aspnetcore-3.1 - ASP.NET Core is a cross-platform .NET framework for building modern cloud-based web application * Sat Feb 12 2022 Vitaly Lipatov 3.1.22-alt1 - .NET Core 3.1.22 - December 14, 2021 - CVE-2021-43877: ASP.NET Core Elevation of privilege Vulnerability - CVE-2021-34532: ASP.NET Core Information Disclosure Vulnerability * Thu Jul 01 2021 Vitaly Lipatov 3.1.16-alt1 dotnet-aspnetcore-5.0 - ASP.NET is a cross-platform .NET framework for building modern cloud-based web application * Sat Feb 12 2022 Vitaly Lipatov 5.0.14-alt1 - ASP.NET 5.0.14 - CVE-2021-43877 : ASP.NET Core Elevation of privilege Vulnerability - CVE-2021-34532 : ASP.NET Core Information Disclosure Vulnerability * Thu Jul 01 2021 Vitaly Lipatov 5.0.7-alt1 dotnet-bootstrap-3.1 - .NET Core SDK binaries [148M] * Sat Feb 12 2022 Vitaly Lipatov 3.1.22-alt1 - .NET Core 3.1.22 - December 14, 2021 - CVE-2021-43877: ASP.NET Core Elevation of privilege Vulnerability - CVE-2021-34485: .NET Core Information Disclosure Vulnerability - CVE-2021-26423: .NET Core Denial of Service Vulnerability - CVE-2021-34532: ASP.NET Core Information Disclosure Vulnerability * Wed Jun 30 2021 Vitaly Lipatov 3.1.16-alt1 dotnet-bootstrap-5.0 - .NET Core SDK binaries [172M] * Sat Feb 12 2022 Vitaly Lipatov 5.0.14-alt1 - .NET 5.0.14 - February 8, 2022 - CVE-2022-21986 : .NET Denial of Service Vulnerability - CVE-2021-43877 : ASP.NET Core Elevation of privilege Vulnerability - CVE-2021-41355 : .NET Core Information Disclosure Vulnerability - CVE-2021-34485 : .NET Core Information Disclosure Vulnerability - CVE-2021-26423 : .NET Core Denial of Service Vulnerability - CVE-2021-34532 : ASP.NET Core Information Disclosure Vulnerability * Wed Jun 30 2021 Vitaly Lipatov 5.0.7-alt1 dotnet-coreclr-3.1 - .NET Core runtime, called CoreCLR, and the base library, called mscorlib [22M] * Sat Feb 12 2022 Vitaly Lipatov 3.1.22-alt1 - new version (3.1.22) with rpmgs script - CVE-2021-34485: .NET Core Information Disclosure Vulnerability - CVE-2021-26423: .NET Core Denial of Service Vulnerability * Wed Jun 30 2021 Vitaly Lipatov 3.1.16-alt1 dotnet-corefx-3.1 - .NET Core foundational libraries, called CoreFX [18M] * Sat Feb 12 2022 Vitaly Lipatov 3.1.22-alt1 - new version (3.1.22) with rpmgs script - CVE-2021-34485: .NET Core Information Disclosure Vulnerability - CVE-2021-26423: .NET Core Denial of Service Vulnerability * Sat Sep 04 2021 Vitaly Lipatov 3.1.16-alt2 dotnet-hostfxr-3.1 - Installer packages for the .NET Core runtime and libraries * Sat Feb 12 2022 Vitaly Lipatov 3.1.22-alt1 - new version (3.1.22) with rpmgs script - CVE-2021-34485: .NET Core Information Disclosure Vulnerability - CVE-2021-26423: .NET Core Denial of Service Vulnerability * Wed Jun 30 2021 Vitaly Lipatov 3.1.16-alt1 dotnet-runtime-5.0 - Microsoft .NET Runtime and Microsoft.NETCore.App [43M] * Sat Feb 12 2022 Vitaly Lipatov 5.0.14-alt1 - new version (5.0.14) with rpmgs script - CVE-2022-21986 : .NET Denial of Service Vulnerability - CVE-2021-41355 : .NET Core Information Disclosure Vulnerability - CVE-2021-34485 : .NET Core Information Disclosure Vulnerability - CVE-2021-26423 : .NET Core Denial of Service Vulnerability * Sat Feb 12 2022 Vitaly Lipatov 5.0.7-alt2 - disable build dotnet-host subpackage (use dotnet-host 6.x) * Wed Jun 30 2021 Vitaly Lipatov 5.0.7-alt1 dotnet-runtime-6.0 - Microsoft .NET Runtime and Microsoft.NETCore.App [44M] * Sat Feb 12 2022 Vitaly Lipatov 6.0.2-alt2 - build dotnet-host subpackage * Fri Feb 11 2022 Vitaly Lipatov 6.0.2-alt1 dotnet-sdk-3.1 - SDK for the .NET Core 3.1 * Sat Feb 12 2022 Vitaly Lipatov 3.1.416-alt1 - .NET Core SDK 3.1.416 * Thu Jul 01 2021 Vitaly Lipatov 3.1.410-alt1 dotnet-sdk-5.0 - SDK for the .NET * Sat Feb 12 2022 Vitaly Lipatov 5.0.405-alt1 - .NET SDK 5.0.405 * Thu Jul 01 2021 Vitaly Lipatov 5.0.204-alt1 drbd9 - The Linux kernel code for DRBD9. * Sat Feb 12 2022 Andrew A. Vasilyev 9.1.5-alt2 - Fix build for 5.15 and 5.16. * Fri Dec 17 2021 Andrew A. Vasilyev 9.1.5-alt1 fnott - Notification daemon for wlroots-based Wayland compositor * Sat Feb 12 2022 Sergey Bolshakov 1.2.1-alt1 - 1.2.1 released * Sat Feb 05 2022 Sergey Bolshakov 1.2.0-alt1 kernel-image-centos - The Linux kernel (the core of the Linux operating system) [121M] * Sat Feb 12 2022 Alexey Gladkov 5.14.0.59-alt1.el9 - Updated to kernel-5.14.0-59.el9: + gfs2: Upstream backports for mmap and deadlock fixes + x86/sgx: Update SGX subsystem code upto v5.16-rc5 * Thu Feb 10 2022 Alexey Gladkov 5.14.0.58-alt1.el9 - Updated to kernel-5.14.0-58.el9 (fixes: CVE-2022-0185): + CI updates + Fix load tracking WARNINGs + Fix RTC based wakeup for Barcelo + Handle warning of allocation failure on DMA zone w/o managed pages + ipv4: stable backports for rhel 9.0 (phase 2) + KVM: x86: Fix Win11 guests with Hyper-V role + hv_evmcs + netfilter: nft_reject_bridge: Fix for missing reply from prerouting + PCI: hv: Add arm64 Hyper-V vPCI support + pinctrl: amd: Fix wakeups when IRQ is shared with SCI + [s390] s390/pci: move pseudo-MMIO to prevent MIO overlap + selftests/bpf: Enlarge select() timeout for test_maps + vfs: fs_context: fix up param length parsing in legacy_parse_param * Wed Feb 09 2022 Alexey Gladkov 5.14.0.57-alt1.el9 - Updated to kernel-5.14.0-57.el9 (fixes: CVE-2021-44733): + aacraid: add new messaging + arch/x86: KABI structs and array padding + dmaengine: idxd: Add wq occupancy information to sysfs attribute + dm: sync with upstream 5.17 and fix io accounting issue + fix use-after-free in tee driver + hpsa: add new messaging + lpfc: Add new messaging + mpi3mr: driver update + mpt3sas, megaraid_sas, mptsas: Add new messaging + mptcp: disable by default + net/sched: phase-2 stable backports for rhel9 + NVMe/FC bug fixes for centos-stream-9 + qla2xxx: Add new messaging + redhat: switch the kernel package to use certs from system-sb-certs + vrf: Reset IPCB/IP6CB when processing outbound pkts in vrf dev xmit * Tue Feb 08 2022 Alexey Gladkov 5.14.0.56-alt1.el9 kernel-image-rt - The Linux kernel with PREEMPT_RT patches (Real-Time Linux) * Fri Feb 11 2022 Vitaly Chikunov 5.10.90-alt1.rt61 - Update to v5.10.90-rt61 (2022-02-11). * Sun Jan 09 2022 Vitaly Chikunov 5.10.90-alt1.rt60 kernel-modules-evdi-centos - DisplayLink kernel module * Sat Feb 12 2022 Konstantin Lepikhov (For packages) 1.10.0-alt4.331264.e59.1.el9 - Build for kernel-image-centos-5.14.0.59-alt1.el9. * Fri Feb 11 2022 L.A. Kostis 1.10.0-alt4 - Fix build with recent centos9 kernel (tnx glebfm@ for ideas) - Fix merge from ChromeOS (see upstream issue #340). * Sat Jan 29 2022 L.A. Kostis 1.10.0-alt3 Note: changelog entry for 1.10.0-alt3.331264.e56.1.el9 not found. kernel-modules-lkrg-centos - Linux Kernel Runtime Guard module * Sat Feb 12 2022 Vladimir D. Seleznev 0.9.2.10.git17752c8-alt1.331264.e59.1.el9 - Build for kernel-image-centos-5.14.0.59-alt1.el9. * Sun Jan 30 2022 Vladimir D. Seleznev 0.9.2.10.git17752c8-alt1 Note: changelog entry for 0.9.2.10.git17752c8-alt1.331264.e56.1.el9 not found. kernel-modules-v4l2loopback-centos - v4l2-loopback device * Sat Feb 12 2022 Konstantin Lepikhov (For packages) 0.12.5-alt2.331264.e59.1.el9 - Build for kernel-image-centos-5.14.0.59-alt1.el9. * Fri Nov 26 2021 L.A. Kostis 0.12.5-alt2 Note: changelog entry for 0.12.5-alt2.331264.e56.1.el9 not found. libks - Foundational support for signalwire C products * Sat Feb 12 2022 Anton Farygin 1.8.0-alt1 - 1.7.0 -> 1.8.0 * Thu Nov 25 2021 Anton Farygin 1.7.0-alt1 libre2 - C++ fast alternative to backtracking RE engines * Sat Feb 12 2022 Anton Farygin 20220201-alt1 - update to 2022-02-01 * Mon Nov 22 2021 Anton Farygin 20211101-alt1 mediawiki-extensions-DynamicPageList - MediaWiki extension for build a list of pages that are listed in a set of categories * Sun Feb 13 2022 Vitaly Lipatov 1.37-alt1 - new version (1.37) with rpmgs script - switch to MW version * Fri May 01 2020 Vitaly Lipatov 1.7.0-alt1.1 powershell - PowerShell for every system! [22M] * Sat Feb 12 2022 Vitaly Lipatov 7.2.1-alt1 - new version (7.2.1) with rpmgs script * Sat Feb 20 2021 Vitaly Lipatov 7.1.2-alt1 python3-module-tornado - Scalable, non-blocking web server and tools * Sat Feb 12 2022 Ivan A. Melnikov 6.1.0-alt2.1 - Increased test timeout (fixes build on riscv64) * Mon Dec 06 2021 Grigory Ustinov 6.1.0-alt2 qpdf - Command-line tools and library for transforming PDF files [12M] * Sat Feb 12 2022 Anton Farygin 10.6.1-alt1 - 10.6.1 * Fri Feb 11 2022 Anton Farygin 10.6.0-alt1 rpm-build-vm - RPM helper to run tests in virtualised environment * Sat Feb 12 2022 Vitaly Chikunov 1.31-alt1 - Allow to vm-run on uninstalled kernels (developer mode). * Sun Jan 30 2022 Vitaly Chikunov 1.30-alt1 sofia-sip - Sofia SIP User-Agent library * Sat Feb 12 2022 Anton Farygin 1.13.7-alt1 - 1.13.7 * Thu Oct 28 2021 Anton Farygin 1.13.6-alt1 thunderbird - Thunderbird is Mozilla's e-mail client [412M] * Sat Feb 12 2022 Pavel Vasenkov 91.6.0-alt1 - New version. - Security fixes: + CVE-2022-22753 Privilege Escalation to SYSTEM on Windows via Maintenance Service + CVE-2022-22754 Extensions could have bypassed permission confirmation during update + CVE-2022-22756 Drag and dropping an image could have resulted in the dropped object being an executable + CVE-2022-22759 Sandboxed iframes could have executed script if the parent appended elements + CVE-2022-22760 Cross-Origin responses could be distinguished between script and non-script content-types + CVE-2022-22761 frame-ancestors Content Security Policy directive was not enforced for framed extension pages + CVE-2022-22763 Script Execution during invalid object state + CVE-2022-22764 Memory safety bugs fixed in Thunderbird 91.6 * Tue Jan 25 2022 Pavel Vasenkov 91.5.1-alt1 xfce4-notifyd - Simple notification daemon for Xfce * Sat Feb 12 2022 Mikhail Efremov 0.6.3-alt1 - Use _user_unitdir macro. - Updated to 0.6.3. * Tue Sep 01 2020 Mikhail Efremov 0.6.2-alt1 zsh - A shell with lots of features * Sat Feb 12 2022 Arseny Maslennikov 1:5.8.1-alt1 - 5.8 -> 5.8.1. - Fixes: + CVE-2021-45444 * Tue Nov 02 2021 Arseny Maslennikov 1:5.8-alt3 Total 17516 source packages.